The point where experts and best companies meet
Share
The AWS Cloud Security Response team manages the security and availability of AWS Cloud services. We operate on the ‘AWS’ side of the Shared Responsibility Model to ensure “Security of the Cloud” and to protect our customers. This role requires engineers to work tactically with both internal and external stakeholders to solve security challenges at massive scale, and to think strategically to develop and implement changes to drive automation, scalability and continuous progress for the organization.* be able to assess technical vs. business risks and consistently drive internal engineering teams to take the right actions in the appropriate time frames to mitigate risks.* have a good mix of broad and deep technical knowledge and a demonstrated background in information security.* be technically proficient in the fields of network and operating system security, cryptography, software security, security operations, incident response, and emergent security intelligence.* possess a combination of troubleshooting, technical, and communication skills, as well as the ability to manage a mix of disparate tasks which may include small-project and software development work.* be comfortable challenging and escalating to senior leadership to always ensure the best outcome for customers.* Triage/assess security issues and engage with internal service teams to ensure prompt remediation of issues, escalating internally as necessary to ensure the right level of urgency and engagement.* Demonstrate high ability and tolerance for extreme context switching and interruptions while staying productive and effective.* Develop pragmatic solutions that achieve business requirements while keeping an acceptable level of risk.* Help with recruiting activities and administrative work.* Mentoring of junior staff and proactive knowledge sharing within the team and across the company.* Fulfill regular on-call responsibilities.Key job responsibilities
* Supply oversight of in-flight security issues.* Triage new incoming issues to determine the level of risk they present to AWS, and then accordingly prioritize its remediation in conjunction with the impacted service team.* Communicate the state of these issues to various audiences, both technical and non-technical, at various levels of seniority (up to and including AWS’ Chief Information Security Officer).* Explore building and improving our tooling to make your own life easier, and at the same time, sharing that benefit with all our engineers globally.A day in the life
As part of our "follow-the-sun rotation", you will receive a handoff from global peers and be delegated ownership of various security issues presently in-flight. The issues could relate to any of our 200+ products, so you will often need to learn on-the-fly.
You will engage various stakeholders, such as the internal service team who owns the service and it's mitigation, along with AWS Security Leadership, Legal, and the leadership of the involved service team.As the day progresses, new issues will be automatically assigned to you based on your workload and you will be responsible for triaging them, determining their level of impact, and work towards resolving them at the appropriate pace.At the end of the day, you will have documented your work to allow the incoming shift to continue driving issues to resolution.
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Training & Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.Work/Life Balance
- BS degree in Computer Science, Computer Engineering, Electrical Engineering, or 3+ years’ equivalent technology experience.
- 3+ years or more of proven experience with a focus in areas such as systems, network, and/or application security.
- 2+ years of scripting/coding experience in any language (including Bash/PowerShell scripting). Previous experience in Python scripting would be ideal.
These jobs might be a good fit